Cross Site Scripting (XSS) vulnerability in Booking Core - Ultimate Booking System Booking Core 1.7.0 via the (1) "About Yourself” section under the “My Profile” page, " (2) “Hotel Policy” field under the “Hotel Details” page, (3) “Pricing code” and “name” fields under the “Manage Tour” page, and (4) all the labels under the “Menu” section.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-07-14T14:35:24
Updated: 2024-08-04T15:33:05.559Z
Reserved: 2020-09-14T00:00:00
Link: CVE-2020-25444
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-07-14T15:15:08.067
Modified: 2024-11-21T05:17:58.597
Link: CVE-2020-25444
Redhat
No data.